The catalog now holds 374 graded puzzles across seven disciplines, each with its own grading
engine:
🧹 Refactoring (54 puzzles): inherit working-but-awful code, including the famous
Gilded Rose, and clean it up. The tests must stay green while structural gates measured
from your source (method length, cyclomatic complexity, nesting depth, duplicate blocks)
force the mess out.
🛡️ Secure Coding (20 puzzles): fix functionally-correct-but-exploitable code against
real attack payloads, path traversal, SQL injection, SSRF, log forging, open redirect. Two suites
grade every submission: exploits blocked and behavior preserved.
💡 Design Principles (8 puzzles): small katas on immutability, sealing an aggregate's
invariants, and dependency inversion, graded on structure the way the architecture track is.
✍️ Test Writing (24 puzzles): you write the suite, and it passes only when it catches enough
planted-bug mutants, coverage that has to actually detect regressions.
The founding tracks anchor the rest: 125 algorithm puzzles with performance gates and allocation
budgets, 13 architecture katas, and 130 database puzzles, including the plan-graded ones where the
execution plan itself is pass/fail.